--+- -d ------+-->
! !
+- --debug -+
|
If this option is set, the DESCRIPTOR/DEBUG components are included in the signatue. |
No |
--+- -p --------+- package-name ->
! !
+- --package -+
|
Specify the Java package name to search for in the CAP-file. If this option isn't set,
the first package found will be signed (package-name --> Java package name).
|
No |
--+- -i ---------+- PIN ->
! !
+- --tokenpin -+
|
Specify the PIN to open the token. Only used if token is PIN protected
(PIN --> PIN to open the token referenced by tokenspec).
|
No |
--+- -t -------+- LOAD-file ->
! !
+- --target -+
|
If the CAP-file to be signed shall not be modified this option can be used to specify
the location and name of the target (signed) CAP-file (LOAD-file --> File name of the signed CAP-file).
|
No |
--+- -a ----------+-+- VOP201 -+->
! ! ! !
+- --algorithm -+ +- GP211 --+
|
Defines whether the DAP generation algorithm defined in VOP 2.0.1' or the one defined in
Global Platform 2.1.1 is to be used. The default value is VOP201 (VOP201|GP211 --> DAP
generation algorithm).
|
No |
| CAP-file |
CAP filename |
Yes |
| AID |
AID of Security Domain to verify this signature. |
Yes |
| tokenspec |
Specify the token holding the key to be used for signature generation.
In case of PK DAP possible token definitions are:
"pkcs11:<dllname>" | "windows" | "<PKCS#12-file>" | "<PKCS#8-file>" | "<hex-signature>".
For symetric DAP the tokenspec must be the 16 byte DES key (as HEX string) to be used for DAP generation.
The string "windows" means to search the Windows system (CAPI) for a private key.
You can also pass the signature directly.
|
Yes |